
vlan配置% R, G/ u. M0 Z( L
, H' p: ~& H5 v1 B! H, _interface Vlan110
$ t: L8 w% z7 L P4 K) ~ ip address 192.168.110.1 255.255.255.02 p J0 K3 [' F- `( z' H$ C' O
ip access-group caiwuAllow in6 z9 A0 b! p* H6 e [8 H7 k
ip helper-address 192.168.0.37 m5 I! L4 m* J' [
!1 R3 p0 i+ ]- y) _# v
interface Vlan120
# E' c: K: U1 i( j+ j$ w ip address 192.168.120.1 255.255.255.00 c; ]' v2 o4 B2 V9 t
ip access-group caiwuDeny in
' N4 U! o9 I, l, J7 Z: @ ip helper-address 192.168.0.3
`/ J. K0 d9 z) v4 J!
* {, j; {5 ?3 ~# L$ Cinterface Vlan130
$ G6 J T7 d6 I5 p u4 N+ U- O ip address 192.168.130.1 255.255.255.04 r0 S- F- d* J! E
ip access-group caiwuDeny in# m! L0 A, k/ e" `( o1 @, }3 ^' x: e
ip helper-address 192.168.0.3. {' E; i/ S: B$ X
!8 m& Z% k! m$ J0 D/ g( Y
ip access-list extended caiwuAllow3 A8 L) r. @( O3 G
permit ip 192.168.110.0 0.0.0.255 192.168.0.0 0.0.0.255 log reflect vlan110 timeout 30) M& c, b8 |& o2 i' ]* J+ i( I
permit ip 192.168.110.0 0.0.0.255 192.168.120.0 0.0.0.255 log reflect vlan110 timeout 30
& O7 y+ r! E0 n) {7 b+ s$ g: I permit ip 192.168.110.0 0.0.0.255 192.168.130.0 0.0.0.255 log reflect vlan110 timeout 30 p9 L, L8 ]+ S+ ^- [
permit ip any any
" w) Z$ h% |) p, ~: }8 u' v: Qip access-list extended caiwuDeny; v, u; G& ?3 q& }# k) ]4 F
evaluate vlan110 # O% M; d: V& F
deny ip 192.168.120.0 0.0.0.255 192.168.110.0 0.0.0.255
# a0 W2 q0 d- A; Y deny ip 192.168.130.0 0.0.0.255 192.168.110.0 0.0.0.255 `; r. r& i, ~' B$ b- H* T" }: s
permit ip any any
4 c( O' E: h" v' F9 m5 O以上是路由器的配置,我发现日志一直会有错误信息
* C6 L' h3 W- I! oDec 24 11:13:13 192.168.120.1 6319751: Dec 24 11:12:43.347: %ACLMGR-3-INVALIDPARAM: Invalid ACL type 5 encountered) B2 y( t; ? l6 z. ^
Dec 24 11:13:13 192.168.120.1 6319752: -Traceback= 182FB44 17FE088 1EFBC68 1EF26E0
3 D& T+ a5 F6 T/ d6 q' V g# D) E9 I6 j8 l- v, `8 r
我想应该是自反列表的问题吧!能不能帮我分析下哪里出了问题。谢谢 |
|